Vulnerability Details CVE-2021-25086
The Advanced Page Visit Counter WordPress plugin before 6.1.2 does not sanitise and escape some input before outputting it in an admin dashboard page, allowing unauthenticated attackers to perform Cross-Site Scripting attacks against admins viewing it
Exploit prediction scoring system (EPSS) score
EPSS Score 0.216
EPSS Ranking 95.4%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2021-25086
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:-
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:1.0
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:2.0
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:2.5
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:2.6
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:3.0
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:3.1
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:3.2
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:3.3
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:3.5
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:3.6
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:3.7
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:3.8
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:3.9
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:4.0
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:4.2
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:4.3
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:4.4
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:5.0
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:5.0.2
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:5.0.3
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:5.0.4
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:5.0.5
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:5.0.7
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:5.0.8
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:5.1
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:6.0.0
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:6.0.1
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:6.0.2
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:6.0.3
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:6.0.4
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:6.0.5
-
cpe:2.3:a:advanced_page_visit_counter_project:advanced_page_visit_counter:6.0.6